5.7
/ 10
MEDIUM
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
Description
IBM Engineering Requirements Management Doors Next 7.0.2, 7.0.3, and 7.1 could allow an authenticated user on the network to spoof email identity of the sender due to improper verification of source data.
Basic Information
ID
CVE-2025-2140
Source
ibm
Published
Oct 12, 2025 at 13:33
Affected Product
Vendor
IBM
Product
Engineering Requirements Management Doors Next
Version
7.0.2
Affected Versions
IBM Engineering Requirements Management Doors Next 7.0.2
IBM Engineering Requirements Management Doors Next 7.0.3
IBM Engineering Requirements Management Doors Next 7.1
IBM Engineering Requirements Management Doors Next 7.0.3
IBM Engineering Requirements Management Doors Next 7.1